ASD's Blueprint for Secure Cloud

Rules

This section describes the configuration of rules within Microsoft Defender associated with systems built according to the guidance provided by ASD's Blueprint for Secure Cloud.

Estimated reading time: 2 minutes

Indicators

Not configured

Process Memory Indicators

Not configured

Web Content Filtering

Adult Sites

ItemValue
General
Policy NameAdult Sites
Blocked Categories
CultsEnabled
GamblingEnabled
NudityEnabled
Pornography/Sexually ExplicitEnabled
Sex EducationEnabled
TastelessEnabled
ViolenceEnabled
Scope
Machine GroupsSelect all

High Traffic Sites

ItemValue
General
Policy NameHigh Traffic Sites
Blocked Categories
Download SitesEnabled
Image SharingEnabled
Peer-to-PeerEnabled
Streaming Media & DownloadsEnabled
Scope
Machine GroupsSelect all

High Traffic Sites

ItemValue
General
Policy NameLegal Liability
Blocked Categories
Child Abuse ImagesEnabled
Criminal ActivityEnabled
HackingEnabled
Hat & IntoleranceEnabled
Illegal DrugEnabled
Illegal SoftwareEnabled
School CheatingEnabled
Self-HarmEnabled
WeaponsEnabled
Scope
Machine GroupsSelect all

Automation uploads

ItemValue
File Content Analysis
Content analysisOn
File extension namesair,elf,gadget,msi,vbe,url,cmd,js,reg,ws,pl,’’,rgs,bat,vbs,inf,cpl,vb,ps1,job,ko.gz,exe,wsf,dll,py,rb,sh,scr,ko,com,tcl,sys
Memory Content Analysis
EnabledOn

Automation folder exclusions

Not configured

Security & Governance

  • None identified

Design

Configuration

  • None identified

References

Do you have a suggestion on how the above page could be improved? Get in touch! ASD's Blueprint for Secure Cloud is an open source project, and we would love to get your input. Submit an issue on our GitHub, or send us an email at blueprint@asd.gov.au

Acknowledgement of Country icon

Acknowledgement of Country
We acknowledge the Traditional Owners and Custodians of Country throughout Australia and their continuing connections to land, sea and communities. We pay our respects to them, their cultures and their Elders; past, present and emerging. We also recognise Australia's First Peoples' enduring contribution to Australia's national security.

Authorised by the Australian Government, Canberra